论文部分内容阅读
为了解决当前计算机系统内软件滥用的问题,提出使用公钥密码数字签名技术实现软件实名(software realname,SRN)认证的概念。设计一种基于软件实名认证的系统安全机制,该机制包括软件标识模型和软件认证模型。给出了在Windows环境下的软件标识器、软件静态认证和软件动态认证的实现方案。实验结果表明,SRN机制可以查验软件合法来源,检查软件发布后是否被非法篡改,可有效阻止恶意软件运行,对于保证计算机系统安全有明显效果。
In order to solve the problem of software abuse in the current computer system, the concept of software realname (SRN) authentication using public key cryptographic digital signature technology is proposed. A system security mechanism based on software real name authentication is designed. The mechanism includes software identification model and software authentication model. The implementation of software identifier, software static authentication and software dynamic authentication under Windows environment is given. The experimental results show that the SRN mechanism can check the legal source of the software and check whether the software has been tampered with illegally after it is released so as to effectively prevent the malware from running, which has a significant effect on ensuring the security of the computer system.